Hi Mitch, Thanks for taking the time to offer your insight on the topic. I completely agree that IPv6 is not a drop-in replacement for IPv4 and I also agree that many of the detailed aspects of IPv6 bring complexity into the networking world as many of us have long known it. I have long asserted that much of this is not a shortcoming of IPv6 but an insistence by people trying to overlay old ideas (ahem, workarounds) into their IPv6 deployments (RFC 1918 IPs and NAT at the top of that list). IPv6 is the so-called round peg and people insist on banging it into square hole that is IPv4. It doesn't fit and forcing it is going to go poorly. Any mention of NAT66 makes the hair on the back of my neck stand up because it exactly illustrates the 'gotta have NAT mentality' that an entire generation was born into and don't want to let go. It's all they've ever known and a world without NAT44 or NAT66 is beyond comprehension. Yes, yes, we can quickly get into discussions like provider independent address space and what that means to a network move but the railing I have heard over that across the years is mostly hyperbole to a healthy portion of us. None of these challenges have kept a multitude of other vendors from offering v6 in their products and if Meraki was thinking of holding off on v6 until it was somehow better baked... dang. We're 22 years in to v6 now; improvements are full on in the incremental stage. Better baked isn't coming. This is it. To start, here's what I would like to see from Meraki: - The ability to assign an IPv6 address to my Internet interface(s) (along with a corresponding default route). - The ability to specify v6 Internet DNS servers - The ability to manually assign a /64 prefix to my VLAN interfaces and VPN network which I will derive from the /48 or /56 or /60 assigned by my provider (no DHCP-PD needed). This would include the ability for me to specify, if nothing else, DNS info to be included in my router advertisements. - Firewall rules on par with the existing v4 functionality. - The ability to create a 6over4 GRE tunnel (for people who still need to tunnel through their providers v4-only network). Longer term: - DHCP Prefix Delegation would be nice because it would help a lot of Meraki customers. - Internal DHCPv6 is also a nice to have (including reservations); in many cases we can get along just fine without it. - Client VPNs with IPv6 I'm curious to know what other features people would consider 'essential' for their v6 deployments. Please tell. Thanks. cmw
... View more